Steam hardware shipper breach leaks customer data, including names and addresses

Valve has notified European customers that a data breach at its shipping partner, CEVA Logistics, may have exposed personal information including names and addresses. The company warned users to be vigilant against phishing attempts related to their hardware orders.
Why it matters
This incident underscores the risks associated with third-party logistics providers and the importance of data security in consumer hardware supply chains.
Valve says a data breach may have exposed the personal information of customers who ordered its Steam hardware in Europe. In an email sent to users, Valve says its European shipping partner, CEVA Logistics, suffered a data breach that may have included customer names, addresses, phone numbers, and email addresses.
The breach at CEVA occurred between July 29th and August 1st, weeks after Valve began taking reservations for its new Steam Machine and Steam Controller. Valve adds that European customer data “was likely compromised” as part of the breach, as CEVA stores “delivery-related information” for up to 90 days after orders.
[Image: https://platform.theverge.com/wp-content/uploads/sites/2/2026/08/steam-hardware-notification_abda01.png?quality=90&strip=all]
[Image: https://platform.theverge.com/wp-content/uploads/sites/2/2026/08/steam-hardware-notification-2.png?quality=90&strip=all]
[Image: https://platform.theverge.com/wp-content/uploads/sites/2/2026/08/steam-hardware-notification-3.png?quality=90&strip=all]
Get smarter about the news
Sign up free for a feed built around what you actually care about, Dive Deeper research on any story, and the full text of every article.
Create free accountAlready have an account? Sign in